Skip to content

Commit dbd617f

Browse files
yshefferysheffer
authored andcommitted
Add section refs, reorder by doument order
1 parent 2989a62 commit dbd617f

File tree

1 file changed

+5
-5
lines changed

1 file changed

+5
-5
lines changed

draft-ietf-oauth-rfc8725bis.md

Lines changed: 5 additions & 5 deletions
Original file line numberDiff line numberDiff line change
@@ -787,15 +787,15 @@ for their reviews.
787787

788788
This document obsoletes RFC 8725 and provides several significant improvements and additions:
789789

790-
1. Encryption-Signature Confusion: Added mitigation for attacks where verifiers don't distinguish between successful decryption and successful signature validation.
790+
1. Algorithm Verification: Added defensive checking to address incorrect reading of `alg` values as being case-insensitive ({{algorithm-verification}}).
791791

792-
2. PBES2 Count Limits: Added requirements to reject unreasonably large `p2c` (PBES2 Count) values to prevent DoS attacks.
792+
2. Encryption-Signature Confusion: Added mitigation for attacks where verifiers don't distinguish between successful decryption and successful signature validation ({{preventing-confusion}}).
793793

794-
3. Algorithm Verification: Added defensive checking to address incorrect reading of `alg` values as being case-insensitive.
794+
3. PBES2 Count Limits: Added requirements to reject unreasonably large `p2c` (PBES2 Count) values to prevent DoS attacks ({{limit-iterations}}).
795795

796-
4. Compression DoS: Added mitigation for DoS attacks resulting from abuse of compression in JWE.
796+
4. JWT Format Confusion: Added mitigation for JWT serialization format confusion attacks ({{token-format}}).
797797

798-
5. JWT Format Confusion: Added mitigation for JWT serialization format confusion attacks.
798+
5. Compression DoS: Added mitigation for DoS attacks resulting from abuse of compression in JWE ({{limit-decompression}}).
799799

800800
# Document History
801801

0 commit comments

Comments
 (0)